Close Menu
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Categories
  • Altcoins (1,173)
  • Analysis (1,374)
  • Bitcoin (1,948)
  • Blockchain (1,129)
  • DeFi (1,340)
  • Ethereum (1,335)
  • Event (50)
  • Exclusive Deep Dive (1)
  • Landscape Ads (2)
  • Market (1,380)
  • Reddit (599)
  • Regulation (1,284)
  • Security (1,844)
  • Thought Leadership (1)
  • Uncategorized (3)
  • Videos (39)
Hand picked
  • The daring vision of Vechain to tokensinate human behavior
  • Morgan Stanley’s crypto chief leaves to launch an investment company focused on deffi
  • XRP comes out of the corner pattern; Experts look at another Payfi token for 400% gains
  • Comtex | API Distribution and news of the press release
  • Haussiers partners with the Gibraltar government and the GFSC at the first Cleaning Regulation of the Cryptography of the Pioneer World World
We are social
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Facebook X (Twitter) Instagram
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
Facebook X (Twitter) Instagram YouTube LinkedIn
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Events
Altcoin ObserverAltcoin Observer
Home»Altcoins»Hacker tries to attack XRP Ledger using access to the developer, the security team stops it
Altcoins

Hacker tries to attack XRP Ledger using access to the developer, the security team stops it

April 23, 2025No Comments4 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
1f6a8.png
Share
Facebook Twitter LinkedIn Pinterest Email


A potential security crisis was avoided closely after a hacker has exploited the access token of a developer to inject malicious code into a key tool used by applications on the large XRP book.

The vulnerability, identified by the Aikido security researcher, Charlie Eriksen, could have led to a large supply of supply chain through the cryptography ecosystem.

Hacker uses the NPM token to publish XRPL.js malicious versions on XRP Ledger

According to Aikido Security, the attacker had access to the token of the Nodes Package Manager (NPM) of a developer, allowing them to publish compromise versions of XRPL.JS, the official JavaScript library to interact with the large XRP book.

With more than 140,000 weekly downloads, the package is widely integrated into hundreds of thousands of applications and websites, which raises concerns about the potential scale of violation.

“It could have been catastrophic,” warned Eriksen in an update of security, noting that the flaw theoretically allowed attackers to steal private keys, by endangering cryptographic wallets.

The malicious code was detected on April 21, when the Aikido surveillance system reported five suspect package versions.

🚨We discovered a stolen door in the civil servant #xrpl NPM package. This rear door steals the private keys and sends them to the attackers. Assigned versions 4.2.1 – 4.2.4, if you use an earlier version, do not set up.#crypto #malware #Npm pic.twitter.com/wshctfkjbr

– Aikido safety (@Aikidosecurity) April 22, 2025

Fortunately, the main platforms linked to XRP such as Xaman Wallet and Xrpscan confirmed that they were not affected.

The risk was limited to third -party applications that installed the compromised versions – V4.2.1 to V4.2.4 and V2.14.2 – during a short window before the problem was contained.

The XRP Ledger Foundation responded quickly, depreciating the affected versions and releasing an update corrected, V4.2.5, urging all developers using XRPL.JS to upgrade immediately.

The foundation said that the Core XRP Ledger code base and its Github repository remained intact, as the vulnerability was isolated at the external JavaScript library.

While the identity of the pirate remains unknown, the security of Aikido has suggested to have avenues under investigation.

With today’s NPM vulnerability, it’s a clear reminder to really know what you are using.

In Xaman, our history is talking about himself.

We were full of features, first of all security from the first day, building everything internally.

No shortcuts.

This is what confidence looks like. https://t.co/lh1nefrlph

– Robert @xamanwallet (@Robertkiuru) April 22, 2025

Despite fear, XRP prices have shown resilience, up 8.5% in the last 24 hours in the middle of a wider rally in the cryptography market.

The dry trial against Ripple Labs concludes after four years

The legal dispute between Ripple Labs and the Securities and Exchange Commission (SEC) of the United States ended after more than four years, marking a significant development in the regulation of cryptocurrencies.

In December 2020, the SEC filed a complaint against Ripple Labs, alleging that the company had led an offer of uncrowded titles by selling XRP tokens, rising more than $ 1.3 billion.

Ripple challenged the complaint, arguing that XRP is a digital currency, not a guarantee.

In July 2023, the US district judge Anals Torres made a mixed decision: she determined that XRP sales to institutional investors violated securities laws, while sales on public exchanges did not do so.

Consequently, Ripple was ordered to pay a civil sanction of $ 125 million. ​

In March 2025, Ripple and the SEC reached regulation. Under the agreement, Ripple would pay $ 50 million in the previously imposed fine, the remaining $ 75 million returned to the company.

The two parties agreed to remove their respective calls, effectively implementing the dispute.

The Hacker Post tries to attack XRP Ledger using access to the developer, the security team stops, he appeared first on Cryptonews.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleBitcoin between the 5 best workers in the world, exceeding Google, Silver, Amazon
Next Article DOGECOIN Optimistic flashes at $ 0.195 with an imminent escape from the key graphic model

Related Posts

Altcoins

Morgan Stanley’s crypto chief leaves to launch an investment company focused on deffi

May 14, 2025
Altcoins

Will Bitcoin have succeeded in a new ATH in May? More than 80% of voters say yes

May 14, 2025
Altcoins

The analyst sees the crypto repeating the dot-com bubble, predicts rallies for XRP and a solara challenger

May 14, 2025
Add A Comment
Leave A Reply Cancel Reply

Single Page Post
Share
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Featured Content
Event

Super Vietnam 2025: Where Blockchain, AI, and Innovation Converge in Southeast Asia’s Rising Tech Powerhouse

May 13, 2025

Vietnam is riding a powerful wave of technological innovation, and Super Vietnam 2025 arrives at…

Event

Istanbul Blockchain Week 2025 Is Back: The Future of Web3 Unfolds in Turkey’s Innovation Hub

May 13, 2025

Leading Web3 marketing agency EAK Digital with official media partner Altcoin Observer is proud to…

1 2 3 … 45 Next
  • Facebook
  • Twitter
  • Instagram
  • YouTube

Morgan Stanley’s crypto chief leaves to launch an investment company focused on deffi

May 14, 2025

Will Bitcoin have succeeded in a new ATH in May? More than 80% of voters say yes

May 14, 2025

The analyst sees the crypto repeating the dot-com bubble, predicts rallies for XRP and a solara challenger

May 14, 2025
Facebook X (Twitter) Instagram LinkedIn
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
© 2025 Altcoin Observer. all rights reserved by Tech Team.

Type above and press Enter to search. Press Esc to cancel.

bitcoin
Bitcoin (BTC) $ 103,927.85
ethereum
Ethereum (ETH) $ 2,600.24
xrp
XRP (XRP) $ 2.58
tether
Tether (USDT) $ 1.00
bnb
BNB (BNB) $ 655.26
solana
Solana (SOL) $ 178.58
usd-coin
USDC (USDC) $ 1.00
dogecoin
Dogecoin (DOGE) $ 0.234957
cardano
Cardano (ADA) $ 0.815616
tron
TRON (TRX) $ 0.275596